mirror of
https://github.com/open5gs/open5gs.git
synced 2026-08-11 09:24:14 +00:00
mirror of https://github.com/open5gs/open5gs link from https://open5gs.org/
https://open5gs.org
|
Some checks are pending
Meson Continuous Integration / Build and Test on Ubuntu Latest (push) Waiting to run
ogs_pfcp_parse_volume_measurement() and ogs_pfcp_parse_dropped_dl_traffic_threshold() copied 8-octet fields selected by the flags octet without checking the declared IE length. A short IE with every flag set read up to 48 and 16 octets past the end of the IE. The flags octet itself was also read unchecked, which dereferenced NULL for an absent IE, since the SMF usage report handlers call ogs_pfcp_parse_volume_measurement() without testing volume_measurement.presence. ogs_pfcp_parse_volume() validated each volume field but not the flags octet, and ogs_pfcp_parse_sdf_filter() validated the Flow Description length field without validating that many octets actually follow it. Validate the remaining reads against octet->len and return 0 on a short IE, as ogs_pfcp_parse_volume() already did for its volume fields. The callers compare the decoded length against the IE length, so a truncated IE is now rejected instead of parsed from adjacent memory. |
||
|---|---|---|
| .github | ||
| configs | ||
| debian | ||
| docker | ||
| docs | ||
| lib | ||
| misc | ||
| src | ||
| subprojects | ||
| tests | ||
| vagrant | ||
| webui | ||
| .clang-tidy | ||
| .dockerignore | ||
| .editorconfig | ||
| .gitignore | ||
| LICENSE | ||
| meson.build | ||
| meson_options.txt | ||
| README.md | ||
Getting Started
Please follow the documentation at open5gs.org!
Sponsors
If you find Open5GS useful for work, please consider supporting this Open Source project by Becoming a sponsor. To manage the funding transactions transparently, you can donate through OpenCollective.
Community
- Problem with Open5GS can be filed as issues in this repository.
- Other topics related to this project are happening on the discussions.
- Voice and text chat are available in Open5GS's Discord workspace. Use this link to get started.
Contributing
If you're contributing through a pull request to Open5GS project on GitHub, please read the Contributor License Agreement in advance.
License
- Open5GS Open Source files are made available under the terms of the GNU Affero General Public License (GNU AGPL v3.0).
- Commercial licenses are also available from NewPlane at sales@newplane.io.
Support
Technical support and customized services for Open5GS are provided by NewPlane at support@newplane.io.
